Security Analyst – ConsultantLocation: 1201 Main Street, Suite 600, Columbia, SC 29201 Work Mode: Onsite – 5 days/week Duration: 12 MonthsCandidate Requirement: Must be an SC resident or willing to relocate to SC before start (own expense)Key ResponsibilitiesLead and support Information Security, Compliance, and Risk Management functions for SCDHHS.Manage development and maintenance of RMF/A&A documentation such as SSPs, PIAs, ISAs, CMAs, and related artifacts.Conduct architectural reviews, risk assessments, and technical evaluations including: Network design and information flowSystem/data access modelsFirewall rules (ports, protocols, services)Baseline configuration deviation reviewsVulnerability managementOversee and participate in CMS MARS-E, ARC-AMPE, and FISMA RMF compliance efforts.Perform security reviews for contracts, BAAs, data sharing agreements, and related documents.Serve as the primary point of contact during third-party audits and assessments.Collaborate with business stakeholders to implement risk mitigation strategies.Conduct audits and assessments of internal systems and partner/vendor systems.Utilize tools such as Microsoft Office, System Center Service Manager, Archer eGRC, Bizagi, Atlassian suite, and others for documentation and reporting.Support integration of security and compliance requirements into SDLC activities.Mentor teams and coordinate cross-functional security initiatives.Technical Knowledge (Highly Desirable)Archer (eGRC)Windows & Linux serversNetwork infrastructure (Firewalls, IPS, Switching/Routing)SIEM solutionsIdentity & Access Management solutionsCloud security and vendor management exposureRequired SkillsISC(2), ISACA, SANS GIAC, or other recognized Information Security certification (required).5+ years of IT experience auditing/working with: Windows & Linux environmentsRelational and non-relational databasesNetworking InfrastructureWeb-based applicationsPrior experience working in a FISMA-compliant program.Prior experience with any eGRC system.Prior Health IT experience.Ability to work independently and in cross-functional teams.Strong communication skills with both technical and non-technical stakeholders.Advanced proficiency in Microsoft Word, Excel, PowerPoint, and Visio.Strong attention to detail and ability to understand complex processes.Ability to multitask and meet deadlines in a fast-paced environment.Preferred SkillsPrior ITIL experience in Information Security Management.Experience with RMF-related roles such as ISSO, Security Control Assessor, or Security Architect.Required Education / CertificationsISC(2), ISACA, SANS GIAC, or equivalent security certification.Preferred EducationBachelor's degree in Computer Science or related field, OR10+ years of experience in the field or a related area.About UsInterSources Inc. is a Small, Woman, and Minority-Owned Business Enterprise, ISO/IEC 27001, SOC 2 Type 2 certified company with massive 18+ years of diversified experience in providing IT Consulting Services, Artificial Intelligence, Data Analysis, Application Development, Cloud Services, Cybersecurity, Digital Marketing, ERP Management, Custom Software Development, Web Development, UI/ UX Design, System Integration, QA Support etc. We make reasonable accommodations for clients and employees, and we do not discriminate based on any protected attribute including race, religion, color, national origin, gender sexual orientation, gender identity, age, or marital status.
We also are a Google Cloud and Oracle partner company.